Currently we have the ability to scope API-tokens based on the action, like read/write/delete servers.
It would be very nice, escpecially in more complex/diverse ploi-environments to restrict it also on the server. Or maybe even on project-level.
So TokenA can access all servers and has its r/w/d scopes attached to it. While TokenB is restricted to ServerX & ServerY for the given scopes.